Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 7, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
243871 4.3 警告 fuzzylime forum - Fuzzylime Forum の low.php におけるクロスサイトスクリプティングの脆弱性の脆弱性 - CVE-2007-3235 2012-06-26 15:46 2007-06-14 Show GitHub Exploit DB Packet Storm
243872 7.5 危険 fuzzylime forum - Fuzzylime Forum における SQL インジェクションの脆弱性 - CVE-2007-3234 2012-06-26 15:46 2007-06-14 Show GitHub Exploit DB Packet Storm
243873 10 危険 CA Technologies - CA BrightStor ARCserve Backup for Laptops and Desktops の LGServer コンポーネントにおけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2007-3216 2012-06-26 15:46 2007-06-8 Show GitHub Exploit DB Packet Storm
243874 6.8 警告 e-vision - e-Vision CMS の style.php における SQL インジェクションの脆弱性 - CVE-2007-3214 2012-06-26 15:46 2007-06-14 Show GitHub Exploit DB Packet Storm
243875 4.3 警告 Beehive Forum - Beehive Forum の links.php におけるクロスサイトスクリプティングの脆弱性 - CVE-2007-3212 2012-06-26 15:46 2007-06-14 Show GitHub Exploit DB Packet Storm
243876 4.3 警告 domain technologie control - DTC の 404.php におけるクロスサイトスクリプティングの脆弱性 - CVE-2007-3211 2012-06-26 15:46 2007-06-14 Show GitHub Exploit DB Packet Storm
243877 9.3 危険 cellosoft - Vitalize! 用の Cellosoft Tokens Object 拡張の nptoken.mox におけるスタックベースのバッファオーバーフローの脆弱性 - CVE-2007-3210 2012-06-26 15:46 2007-06-14 Show GitHub Exploit DB Packet Storm
243878 4.3 警告 bruce corkhill - Webwiz のリッチ形式のテキストエディタにおけるクロスサイトスクリプティングの脆弱性 - CVE-2007-3202 2012-06-26 15:46 2007-06-12 Show GitHub Exploit DB Packet Storm
243879 7.5 危険 american financing - Link Request Contact Form における無制限にファイルをアップロードされる脆弱性 - CVE-2007-3199 2012-06-26 15:46 2007-06-12 Show GitHub Exploit DB Packet Storm
243880 4.3 警告 erfan wiki - ERFAN WIKI の index.php におけるクロスサイトスクリプティングの脆弱性 - CVE-2007-3195 2012-06-26 15:46 2007-06-12 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 7, 2026, 4:22 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
401 6.3 MEDIUM
Local
- - A flaw was found in Keylime. An attacker with root access on an enrolled monitored machine, where the Keylime agent runs, can exploit a vulnerability in the Keylime verifier. The verifier uses a hard… New CWE-1241
 Use of Predictable Algorithm in Random Number Generator
CVE-2026-6420 2026-05-6 20:16 2026-05-6 Show GitHub Exploit DB Packet Storm
402 3.1 LOW
Network
- - HCL DFXAnalytics is affected by an Insecure Security Header Configuration vulnerability where the application utilizes the outdated X-XSS-Protection header, which could allow an attacker to exploit b… New CWE-80
Basic XSS
CVE-2025-59854 2026-05-6 20:16 2026-05-6 Show GitHub Exploit DB Packet Storm
403 3.1 LOW
Network
- - HCL DFXAnalytics is affected by an Improper Error Handling vulnerability where the application exposes detailed stack traces in responses, which could allow an attacker to gain insights into the appl… New CWE-209
Information Exposure Through an Error Message
CVE-2025-59853 2026-05-6 20:16 2026-05-6 Show GitHub Exploit DB Packet Storm
404 3.7 LOW
Network
- - HCL DFXAnalytics is affected by an Insufficient Transport Layer Protection vulnerability where data is transmitted over the network without encryption, which could allow an attacker to compromise t… New CWE-319
Cleartext Transmission of Sensitive Information
CVE-2025-59852 2026-05-6 20:16 2026-05-6 Show GitHub Exploit DB Packet Storm
405 3.7 LOW
Network
- - HCL DFXAnalytics is affected by a Using Components with Known Vulnerabilities flaw where the application utilizes unpatched libraries or sub-components, which could allow an attacker to identify and … New - CVE-2025-59851 2026-05-6 20:16 2026-05-6 Show GitHub Exploit DB Packet Storm
406 5.3 MEDIUM
Network
- - HCL DFXAnalytics is affected by an Insecure Security Header configuration vulnerability where the Content-Security-Policy does not define strict directives for object-src and base-uri, which could al… New CWE-358
 Improperly Implemented Security Check for Standard
CVE-2025-31970 2026-05-6 20:16 2026-05-6 Show GitHub Exploit DB Packet Storm
407 5.2 MEDIUM
Local
- - There is a local privilege escalation vulnerability in the ZTE PROCESS Guard service of the cloud computer client, which may allow local arbitrary code execution, privilege escalation and path traver… New CWE-269
 Improper Privilege Management
CVE-2026-40001 2026-05-6 19:16 2026-05-6 Show GitHub Exploit DB Packet Storm
408 8.8 HIGH
Network
- - A remote code execution vulnerability exists in Notification Settings on GeoVision GV-ASWeb 6.2.0. An authenticated user with System Setting permissions can execute arbitrary commands on the server b… New CWE-94
Code Injection
CVE-2026-7841 2026-05-6 17:16 2026-05-6 Show GitHub Exploit DB Packet Storm
409 - - - The Item history widget (in Zabbix 7.0+) or the Plain text widget (in Zabbix 6.0) can execute injected JavaScript when HTML display is enabled. This can allow an attacker to perform unauthorized acti… New CWE-79
Cross-site Scripting
CVE-2026-23928 2026-05-6 17:16 2026-05-6 Show GitHub Exploit DB Packet Storm
410 - - - A user able to connect to Agent 2 can inject an Oracle TNS connection string via the 'service' parameter. This can lead to Agent 2 connecting to an attacker-controlled server and leaking Oracle datab… New CWE-522
 Insufficiently Protected Credentials
CVE-2026-23927 2026-05-6 17:16 2026-05-6 Show GitHub Exploit DB Packet Storm